How to remove pes2013.exe
- File Details
- Overview
- Analysis
pes2013.exe
The module pes2013.exe has been detected as Worm.Ramnit
File Details
Product Name: |
|
Company Name: |
|
MD5: |
d3075d562758268b8767ee801f2cb371 |
Size: |
19 MB |
First Published: |
2018-04-20 21:03:50 (6 years ago) |
Latest Published: |
2018-04-20 21:03:50 (6 years ago) |
Status: |
Worm.Ramnit (on last analysis) |
|
Analysis Date: |
2018-04-20 21:03:50 (6 years ago) |
%sysdrive%\$recycle.bin\s-1-5-21-3441542776-2206585850-244734146-1000\$rdrmjh1\konami |
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x0189a000 |
Name |
Size of data |
MD5 |
.text |
16581120 |
2a5d3b6e66e09f2e9235d4f321c0293f |
PSFD00 |
7680 |
7cbab4d5e96f4bef9d7c694028c7b195 |
.rdata |
1964032 |
193c62fa7feab2a315e161bb4d131b95 |
.data |
1016832 |
065ff991183cbcd965b225c70e18a58d |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
164352 |
18b3784fd1ef3052d6ea3098b55ff006 |
.OUOjziG |
233472 |
e210abdfeb62494dbf3314f5eec8d958 |
.text |
64000 |
5294dfabac8d13b122e7f9e32e503c3c |